Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

While OSX will verify a bundle hasn't been tampered with, but (apparently) will scan a folder next to the bundle for shared libraries automatically.

This bypasses a number of security features (code signing, gatekeeper warning, network firewalls) and doesn't require the user click any unusual buttons or type LD_PRELOAD into a terminal.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: